Skip to content

[GHSA-vgq7-9r5r-j9v3] Free5GC is vulnerable to DoS through its Npcf_BDTPolicyControl POST API - #9182

Open
riccardopreatoni wants to merge 1 commit into
riccardopreatoni/advisory-improvement-9182from
riccardopreatoni-GHSA-vgq7-9r5r-j9v3
Open

[GHSA-vgq7-9r5r-j9v3] Free5GC is vulnerable to DoS through its Npcf_BDTPolicyControl POST API#9182
riccardopreatoni wants to merge 1 commit into
riccardopreatoni/advisory-improvement-9182from
riccardopreatoni-GHSA-vgq7-9r5r-j9v3

Conversation

@riccardopreatoni

Copy link
Copy Markdown

Updates

  • Description

Comments
We are the original finders and reporters of this vulnerability. It was
reported publicly by Riccardo Preatoni in free5gc/free5gc#705 on August 6,
2025, before the CVE and this GitHub advisory were published. The report led
to the upstream fix in free5gc/pcf#53.

Please add Riccardo Preatoni (@riccardopreatoni) and Anqi Chen (@agl-c) as the original
finders.

Copilot AI balanced review requested due to automatic review settings August 21, 2026 11:13

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot was unable to review this pull request because the user who requested the review has reached their quota limit.

@github-actions
github-actions Bot changed the base branch from main to riccardopreatoni/advisory-improvement-9182 August 21, 2026 11:14
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants